France’s SREN Law is promulgated
France’s SREN law introduces cloud market rules and sovereign cloud requirements for sensitive public sector data.
Insights for the EU, the EEA, and the rest of Europe.
France’s SREN law introduces cloud market rules and sovereign cloud requirements for sensitive public sector data.
The revised EU eIDAS Regulation introduces European Digital Identity Wallets and new trust services.
TISAX assessments commissioned from 1 April 2024 must use version 6.0 of the VDA Information Security Assessment catalogue.
FINMA Circular 2023/1 on operational risks and resilience now applies to Swiss banks and securities firms.
Switzerland’s revised Federal Act on Data Protection takes effect, bringing Swiss law closer to the GDPR with some notable differences.
The European Commission has adopted an adequacy decision for the EU–US Data Privacy Framework, three years after Schrems II.
ASEAN and the European Commission publish a Joint Guide comparing ASEAN Model Contractual Clauses and EU Standard Contractual Clauses.
Ireland’s Data Protection Commission fines Meta a record €1.2 billion over transfers of Facebook user data to the US.
Italy’s data protection authority orders a temporary restriction on ChatGPT’s processing of Italian users’ data.
The Centre for Cybersecurity Belgium has published CyberFundamentals 2023, positioning CyFun as a route to demonstrating NIS2 compliance.
The FBI revealed it had secretly infiltrated the Hive ransomware gang, giving decryption keys to victims before seizing its servers.
Three major EU laws on cyber security and resilience enter into force: the NIS2 Directive, DORA and the Critical Entities Resilience Directive.